voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
A first look at Microsoft’s Surface Laptop Ultra and Surface Dev Box
The Surface Laptop Ultra. Microsoft has two new Surface devices arriving later this year, both powered by Nvidia's RTX Spark chips. I got a chance to take a closer look at both the Surface Laptop Ultra and Surface RTX S…
https://www.theverge.com/tech/941600/microsoft-surface-laptop-ultra-dev-box-hands-on
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Possible Phishing 🎣
on: ⚠️hxxps[:]//mail-groveemail-55089[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a1fd0fe3b775000086a6b0b
#cybersecurity #phishing #infosec #urldna #scam #infosec
✨ Gamaredon sfrutta CVE-2025-8088 in WinRAR per distribuire GammaWorm e GammaSteel contro l’Ucraina
#CyberSecurity
https://insicurezzadigitale.com/gamaredon-sfrutta-cve-2025-8088-in-winrar-per-distribuire-gammaworm-e-gammasteel-contro-lucraina/
Instagram accounts continue to be hacked as hackers claim Meta only removed a UI button
Meta AI's API endpoints are reportedly wide open for access, so you can still ask it nicely to hand over Instagram accounts.
https://www.androidauthority.com/meta-ai-instagram-hack-continues-3673846/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
📣🚨 China-linked #TA4922 hackers are targeting UK and European organisations with tax and benefits phishing lures, new malware tools, and #SilentRunLoader, a Python-based stealer linked to LLM-assisted development.
Read: https://hackread.com/china-ta4922-hackers-uk-europe-silentrunloader-malware/
Forget about PCs — I just want NVIDIA to release a new Shield TV
Who cares about pricey Windows on Arm PCs when a new Shield TV is long overdue?
https://www.androidauthority.com/forget-pcs-i-want-new-nvidia-shield-tv-3673135/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Possible Phishing 🎣
on: ⚠️hxxps[:]//csanchezhsenasagobp[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a1fd0f63b775000086a6b03
#cybersecurity #phishing #infosec #urldna #scam #infosec
From Token Bingo to MAX Takeover: Kali365 Operator Expands Operation Across Microsoft Outlook, Okta, Xerox DocuShare, and Other Services
A significant expansion of the Kali365 phishing-as-a-service operation has been observed, now targeting multiple platforms beyond Microsoft 365. The operator abuses OAuth 2.0 device authorization flows to bypass MFA and steal authentication tokens. Key discoveries include a live command-and-control panel infrastructure, a phishing campaign impersonating MAX Messenger (Russia's state-backed messaging platform with 110 million users) through fake prize-claim flows, and a cluster of 126 malicious hosts impersonating services including Microsoft Outlook, Okta SSO, Xerox DocuShare, Mail.ru, Yandex Disk, and Odnoklassniki. The operation demonstrates a deliberate focus on Russian consumer platforms alongside Western enterprise targets, utilizing Telegram bots for credential exfiltration and employing a multi-tenant phishing platform distributed through Telegram channels.
Pulse ID: 6a1f29d52e7ef5590675949f
Pulse Link: https://otx.alienvault.com/pulse/6a1f29d52e7ef5590675949f
Pulse Author: AlienVault
Created: 2026-06-02 19:07:01
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #MFA #Microsoft #OTX #OpenThreatExchange #Outlook #Phishing #RAT #Russia #Telegram #bot #AlienVault
Iran Expands Handala Brand to Physical Threats
Iran's Ministry of Intelligence has broadened its Handala brand beyond cyber operations to include physical threats and influence campaigns targeting US and Israeli interests. The expansion encompasses multiple personas: Handala Popular Resistance Front claiming physical attacks inside Israel, VIPEmployment recruiting proxies globally for espionage and sabotage, and MOISIRAN conducting surveillance operations. These entities engage in coordinated amplification across platforms, soliciting individuals to conduct attacks for financial rewards. The consolidation creates a multi-domain threat combining hacktivist activities with physical operations, espionage recruitment, and influence campaigns. This approach leverages Handala Hack Team's recognition to amplify recruitment efforts while increasing risks to law enforcement, military, intelligence personnel, and critical infrastructure across targeted regions.
Pulse ID: 6a1eeafdcfdd2d861d3662f3
Pulse Link: https://otx.alienvault.com/pulse/6a1eeafdcfdd2d861d3662f3
Pulse Author: AlienVault
Created: 2026-06-02 14:38:53
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #Espionage #Hacktivist #InfoSec #Iran #Israel #LawEnforcement #Military #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault
Operation FlutterBridge: macOS Malvertising Campaign Spreads New FlutterShell Backdoor
A financially-motivated cybercrime cluster designated CL-CRI-1089 has launched Operation FlutterBridge, deploying FlutterShell backdoor malware targeting macOS systems through malvertising. Built with the Flutter framework, FlutterShell masquerades as legitimate applications including podcast players and PDF viewers, delivering adware with full backdoor capabilities such as shell command execution and file system manipulation. The malware uses a WebView-based architecture with JavaScript-to-native bridge, allowing attackers to dynamically modify behavior without recompiling. Distribution occurs through hundreds of Google-verified advertisements controlled by shell companies including AdsParkPro LTD and Advantage Web Marketing LLC. The campaign primarily targets Anglophone and Western European markets. All samples were signed with valid Apple Developer IDs and successfully passed notarization, achieving zero detections on VirusTotal initially. The malware hijacks Google Chrome browsers, redirecting traffic ...
Pulse ID: 6a1ee9cdd897e06c7cac14d9
Pulse Link: https://otx.alienvault.com/pulse/6a1ee9cdd897e06c7cac14d9
Pulse Author: AlienVault
Created: 2026-06-02 14:33:49
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #Browser #Chrome #CyberCrime #CyberSecurity #Europe #Google #InfoSec #Java #JavaScript #Mac #MacOS #Malvertising #Malware #OTX #OpenThreatExchange #PDF #RAT #Rust #Troll #VirusTotal #WesternEurope #bot #AlienVault
Cloud Atlas activity in the second half of 2025 and early 2026: new tools and a new payload
Pulse ID: 6a1ff42b19d105602717c1ec
Pulse Link: https://otx.alienvault.com/pulse/6a1ff42b19d105602717c1ec
Pulse Author: Tr1sa111
Created: 2026-06-03 09:30:19
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Cloud #CloudAtlas #CyberSecurity #InfoSec #OTX #OpenThreatExchange #bot #Tr1sa111
Tracking Iranian APT Screening Serpens’ 2026 Espionage Campaigns
Pulse ID: 6a1ff43f65e0b34293638e73
Pulse Link: https://otx.alienvault.com/pulse/6a1ff43f65e0b34293638e73
Pulse Author: Tr1sa111
Created: 2026-06-03 09:30:39
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #Espionage #InfoSec #Iran #OTX #OpenThreatExchange #bot #Tr1sa111
Nimbus RAT: How Threat Actors Are Abusing Microsoft Teams and Google Drive to Deploy a Java RAT
Pulse ID: 6a1ff4cacc5be018f2078d49
Pulse Link: https://otx.alienvault.com/pulse/6a1ff4cacc5be018f2078d49
Pulse Author: Tr1sa111
Created: 2026-06-03 09:32:58
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #Google #InfoSec #Java #Microsoft #MicrosoftTeams #Nim #OTX #OpenThreatExchange #RAT #bot #Tr1sa111
A New Threat Actor Using ClickFix and Fake Update Drive-By Attacks in Thousands of Compromised Sites
Pulse ID: 6a1ff4c3ae46faa5ef9e6054
Pulse Link: https://otx.alienvault.com/pulse/6a1ff4c3ae46faa5ef9e6054
Pulse Author: Tr1sa111
Created: 2026-06-03 09:32:51
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #OTX #OpenThreatExchange #bot #Tr1sa111
Malicious npm packages abuse dependency confusion to profile developer environments
Pulse ID: 6a1ff4ba759354190f1e5914
Pulse Link: https://otx.alienvault.com/pulse/6a1ff4ba759354190f1e5914
Pulse Author: Tr1sa111
Created: 2026-06-03 09:32:42
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #NPM #OTX #OpenThreatExchange #bot #Tr1sa111
I tested a $3,000 robot mower and now I finally get my work done without worrying about my lawn
The Dreame A3 AWD Pro is a premium robot mower that can genuinely replace your weekend lawn chore.
https://www.androidauthority.com/dreame-a3-awd-pro-hands-on-3671373/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Reloaded in a modern Remcos RAT Infection
Pulse ID: 6a1ff4afb1422149b0e41662
Pulse Link: https://otx.alienvault.com/pulse/6a1ff4afb1422149b0e41662
Pulse Author: Tr1sa111
Created: 2026-06-03 09:32:31
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #OTX #OpenThreatExchange #RAT #Remcos #RemcosRAT #bot #Tr1sa111
From poisoned search results to GPU mining: A cryptojacking campaign abusing ScreenConnect and Microsoft .NET utilities
Pulse ID: 6a1ff49534caa494728e11ed
Pulse Link: https://otx.alienvault.com/pulse/6a1ff49534caa494728e11ed
Pulse Author: Tr1sa111
Created: 2026-06-03 09:32:05
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CryptoJacking #CyberSecurity #InfoSec #Microsoft #NET #OTX #OpenThreatExchange #ScreenConnect #bot #Tr1sa111
The GHOST STADIUM Score: Billions At Stake At The World’s Largest Football Tournament
Pulse ID: 6a1ff4a6d2b877b48754e526
Pulse Link: https://otx.alienvault.com/pulse/6a1ff4a6d2b877b48754e526
Pulse Author: Tr1sa111
Created: 2026-06-03 09:32:22
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #OTX #OpenThreatExchange #bot #Tr1sa111
Smart Contracts for C&C: How ClearFake Hid in Plain Sight on BSC Testnet
Pulse ID: 6a1ff48f519a80c0b86c0280
Pulse Link: https://otx.alienvault.com/pulse/6a1ff48f519a80c0b86c0280
Pulse Author: Tr1sa111
Created: 2026-06-03 09:31:59
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CandC #ClearFake #CyberSecurity #InfoSec #OTX #OpenThreatExchange #bot #Tr1sa111
Privacy and Data Protection: Practical Security Controls for Everyday Risk - https://www.redpacketsecurity.com/privacy-and-data-protection-practical-security-controls-for-everyday-risk/
🚨 EUVD-2026-34065
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: freeipmi
🏢 Vendor: FreeIPMI
📅 Updated: 2026-06-03
📝 ipmi-oem in FreeIPMI before 1.16.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is implemented by a large number of hardwa...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-34065
🟠 CVE-2025-58707 - High (8.1)
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Spin allows PHP Local File Inclusion.
This issue affects Spin: from n/a through 1.8.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2025-58707/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2025-58897 - High (8.1)
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Fermentio allows PHP Local File Inclusion.
This issue affects Fermentio: from n/a through 1.5.0.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2025-58897/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-39550 - High (8.1)
Deserialization of Untrusted Data vulnerability in Elated-Themes Aperitif allows Object Injection.
This issue affects Aperitif: from n/a through 1.6.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-39550/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
CVE-2026-0611 - Critical unpatched RCE in Spacelabs Sentinel. CVSS 9.8. Exploit via .NET Remoting on port 8989 enables arbitrary file read/write and webshell deployment. No patch available. Disable port 8989 immediately. #CVE #infosec #cybersecurity
Drones to protect undersea cables from Russian sabotage touted in new defense pact — US one of three part…
The Australian, UK, and U.S. governments just announced a cooperation to develop new technologies to protect underwater cables. The move comes after recent incidents of damages to undersea cables across the world, as we…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
🖲️ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
⚫ As Global Powers Explore Humanoid Robots, Cyber-Risk Looms
🔗 https://www.darkreading.com/cyber-risk/global-powers-explore-humanoids-cyber-risk
The future of cybersecurity is germinating, as nation-states vie for dominance in the embodied AI market and its supply chain.
Tom's Hardware Unfiltered: Computex 2026, Day 1 — night markets, taking the MRT train, and a slew of demos
The Tom's Hardware team in Taipei reports back on what they've been up to as Computex 2026 begins to gather momentum. Take a look at how we're making
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Possible Phishing 🎣
on: ⚠️hxxps[:]//tryjhytyjctfhdrxtse46ysxfgjxfyjfyjxdthtrterrthfhhhfff[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a1faeaa3b775000086a67a2
#cybersecurity #phishing #infosec #urldna #scam #infosec
Google’s wild Gemini tool that creates a talking, moving AI clone of you is now rolling out widely
Impressive and creepy at the same time.
https://www.androidauthority.com/google-gemini-avatar-wider-rollout-3673670/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
🖲️ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
⚫ FBI-Flagged Phishing Kit Kali365 Expands Its Reach
🔗 https://www.darkreading.com/cyber-risk/fbi-flagged-phishing-kit-kali365-expands-its-reach
Once targeting just Microsoft 365, the phishing-as-a-service platform now aims at AWS, Okta, and Russian platforms, while relying on device code phishing.